How to remove Lineage Spyware from PC?

In this post, I am going to inform you about the symptoms of Lineage spyware presence, as well as how to get rid of Lineage spyware virus from your system.

GridinSoft Anti-Malware
Editor's choice
GridinSoft Anti-Malware
Manual Lineage removal might be a lengthy and complicated process that requires expert skills. GridinSoft Anti-Malware is a professional antivirus tool that is recommended to get rid of this Lineage spyware trojan.
By downloading any software listed on this website you agree to our Privacy Policy and Terms of Use. To use full-featured product, you have to purchase a license for GridinSoft Anti-Malware. 6 days free trial available.

Describing Lineage spyware

Lineage TrojanSpy as the virus is not a lone app, but a part of significantly more expansive as well as complex malware – trojan-stealer. It’s a form of trojan, which is targeted on your personal information, and accumulates really every little thing relating to you as well as your personal computer. Generally, stealers have keylogger capabilities1, which empower them to gather your keystrokes. Besides that, Lineage virus can collect your cookie files, your mobile number, location; it likewise can take all your passwords from the keychain inside of the browser.

Name Lineage
Infection Type Spyware
  • Unconventionial language used in binary resources: Chinese (Simplified);
  • The binary contains an unknown PE section name indicative of packing;
  • The executable is compressed using UPX;
  • Authenticode signature is invalid;
  • Creates a copy of itself;
  • Yara rule detections observed from a process memory dump/dropped files/CAPE;
Similar behavior Hotworld, WinSpy, Delfsnif
Fix Tool

See If Your System Has Been Affected by Lineage spyware

However, the significant share of Lineage spy are seeking for your banking information: card number, security codes and expiration date. In situation if you use online banking, the Lineage stealer virus is able to compromise your login and password, so the criminals will get access to your financial account. Many different corporate information might also be an object of interest of Lineage virus distributors, and in the situation of large business such information leak may provoke disastrous impacts.

Statistics of spyware activity in 2020
TrojanSpy activity in 2020, compared to backdoor viruses activity

The main dispersal manners of Lineage spyware are identical to various other trojans. Nowadays, the majority of such applications are spread with email attachments. These attachments (. docx,. pdf files) have corrupted macroses, that are utilized by Lineage spy to contaminate your system. Often, such letters contain web links to the phishing duplicates of legit sites, like Facebook, Twitter, LinkedIn or so.

Rating of different spyware activity

Most popular spyware in 20202

It is necessary to specify that there is an autonomous group of spyware – for Android operating system. Such applications have identical functions as the PC edition does, but mobile malware is spread as an official app for keeping track of the wife’s or children’s location. Nevertheless, besides taking different private data, it can additionally demonstrate you a completely inaccurate location of the device you are trying to track. Such scenarios might create complaints out of the blue.

How can I understand that my computer is infected with Lineage spyware?

Lineage spy is an extremely stealth malware, because its effectiveness depends on how much time it will operate prior to being diagnosed. So, Lineage spyware creators made everything to make their program appearance as insensible as possible. Certainly, you will see that your profiles in social networks are stolen, and funds from your financial account is moving away, however it is too late.

Lineage also known as

Bkav W32.AIDetectMalware
Elastic malicious (moderate confidence)
MicroWorld-eScan Trojan.Crypt.Delf.AF
ClamAV Win.Trojan.Delf-1564
FireEye Generic.mg.2709db4849c339ca
ALYac Trojan.Crypt.Delf.AF
Cylance unsafe
Zillya Trojan.Lineage.Win32.11067
Sangfor Trojan.Win32.Save.a
CrowdStrike win/grayware_confidence_60% (D)
Alibaba TrojanSpy:Win32/Lineage.70d9a80f
K7GW Trojan ( 004bcce41 )
K7AntiVirus Trojan ( 004bcce41 )
BitDefenderTheta AI:Packer.501748D420
Cyren W32/OnlineGames.C.gen!Eldorado
Symantec Infostealer
ESET-NOD32 a variant of Win32/PSW.Lineage.DN
APEX Malicious
Cynet Malicious (score: 100)
Kaspersky Trojan-GameThief.Win32.Nilage.bbs
BitDefender Trojan.Crypt.Delf.AF
NANO-Antivirus Trojan.Win32.Nilage.foaxck
Avast Win32:Lineage-LM [Trj]
Emsisoft Trojan.Crypt.Delf.AF (B)
F-Secure Trojan.TR/Spy.Gen
DrWeb Trojan.PWS.Lineage
VIPRE Trojan.Crypt.Delf.AF
TrendMicro Mal_Lineage
McAfee-GW-Edition BehavesLike.Win32.Generic.dh
Trapmine malicious.high.ml.score
Sophos Mal/Behav-085
Ikarus Trojan-PWS.Win32.Delf
GData Trojan.Crypt.Delf.AF
Jiangmin Trojan/PSW.Nilage.mj
Avira TR/Spy.Gen
Antiy-AVL Trojan[GameThief]/Win32.Nilage
Xcitium TrojWare.Win32.Magania.~AC@f80uq
Arcabit Trojan.Crypt.Delf.AF
ZoneAlarm Trojan-GameThief.Win32.Nilage.bbs
Microsoft TrojanSpy:Win32/Lineage.gen
Google Detected
McAfee Artemis!2709DB4849C3
MAX malware (ai score=100)
VBA32 BScope.TrojanPSW.Gamania
Malwarebytes Lineage.Spyware.Stealer.DDS
Panda Trj/Lineage.CHW
TrendMicro-HouseCall Mal_Lineage
Rising Downloader.Agent!1.675C (CLASSIC)
Yandex Trojan.GenAsa!lhpuoGper80
SentinelOne Static AI – Malicious PE
Fortinet W32/Nilage.AEC!tr
AVG Win32:Lineage-LM [Trj]
Cybereason malicious.849c33
DeepInstinct MALICIOUS

Domains that associated with Lineage:

What are the symptoms of Lineage trojan?

  • Unconventionial language used in binary resources: Chinese (Simplified);
  • The binary contains an unknown PE section name indicative of packing;
  • The executable is compressed using UPX;
  • Authenticode signature is invalid;
  • Creates a copy of itself;
  • Yara rule detections observed from a process memory dump/dropped files/CAPE;

To prevent infiltration of Lineage spyware, stay clear of releasing any kind of attachments to the emails from unfamiliar addresses. These days, throughout quarantine, email-distributed malware gets a lot more active. Users (particularly ones that started shopping every little thing on online-marketplaces) do not take note to the odd e-mail addresses, and open all the things that reaches their email. And Lineage stealer is directly in these emails.

How to remove Lineage spyware?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • “Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

You can try to do it by hand, nonetheless, like any other trojan, Lineage TrojanSpy puts into effect the modifications pretty deep inside of the system. Thus, it’s very tough to discover all these changes, and maybe even harder to clean them out. To deal with this dangerous malware totally, I can suggest you to make use of GridinSoft Anti-Malware.


To detect and erase all unwanted applications on your computer with GridinSoft Anti-Malware, it’s better to use Standard or Full scan. Quick Scan is not able to find all viruses, because it scans only the most popular registry entries and folders.

Scan types in Gridinsoft Anti-Malware

You can see the detected viruses sorted by their possible harm till the scan process. But to choose any actions against malicious programs, you need to hold on until the scan is finished, or to stop the scan.

GridinSoft Anti-Malware during the scan

To choose the action for each spotted virus or unwanted program, click the arrow in front of the name of detected malicious program. By default, all malware will be moved to quarantine.

List of detected malware after the scan

How to remove Lineage Spyware?

Name: Lineage

Description: Lineage TrojanSpy is classified as a type of malware — malicious software designed to gain access to or damage your computer, often without your knowledge. The Lineage gathers your personal information and relays it to advertisers, data firms, or external users. The Lineage can install additional software and change the security settings on your PC.

Operating System: Windows

Application Category: Spyware

User Review
4 (10 votes)
Comments Rating 0 (0 reviews)
  1. What is Spyware: https://en.wikipedia.org/wiki/Spyware
  2. ESET quaterly report: ESET_Threat_Report_Q22020.pdf

William Reddy

I am from Ireland. My parents bought me a computer when I was 11, and several month after I have got a virus on this PC. I decided to enter the INSA Centre Val de Loire university after being graduated from the school. This French educational institution was offering a brand-new cybersecurity course. After getting the master degree in cybersecurity, I've started working in as virus analyst in a little anti-malware vendor. In 2018, I've decided to start Virus Removal project. The main target of this site is to help people to deal with PC viruses of any kind.

Leave a Reply

Your email address will not be published. Required fields are marked *


Back to top button